Skip to main content
BitterSecurity
GitHub-Creator-Profil

BitterSecurity

Repository-Ansicht von 354 gesammelten Skills in 2 GitHub-Repositories.

gesammelte Skills
354
Repositories
2
aktualisiert
25. Sept. 2026
Repository-Explorer

Repositories und repräsentative Skills

conops-template
nicht klassifiziert

Concept of Operations document creation — executive summary, threat actor profiling, attack narrative, kill chain design, communication plan, deconfliction.

25. Sept. 2026
roe-template
nicht klassifiziert

Rules of Engagement document creation — scope definition, prohibited/permitted actions, testing windows, escalation contacts, incident procedures.

25. Sept. 2026
finding-protocol
Computersystemanalytiker

Operational-tier finding template — minimal fields for sub-agent decision support. Heavyweight deliverable promotion lives in skills/decepticon/final-report.

17. Aug. 2026
ad-overview
Computersystemanalytiker

Active Directory attack lane — BloodHound ingestion, Kerberoasting, ADCS ESC scanning, DCSync, LAPS extraction.

17. Aug. 2026
patch-diff-research
Computersystemanalytiker

Authorized patch-diff workflow for deriving and validating vulnerability variants from a known vulnerable-to-fixed source change.

17. Aug. 2026
pattern-exhaustion
Computersystemanalytiker

Systematic pattern exhaustion methodology. Load after finding any confirmed vulnerability to search for all instances of the same root cause pattern across the codebase.

17. Aug. 2026
analyst-overview
Computersystemanalytiker

Root pointer for the analyst's vulnerability research playbooks. Load this first at iteration start to see the full catalog of vuln-class and chain-building skills.

17. Aug. 2026
contracts-overview
Informationssicherheitsanalysten

Smart contract audit lane — Solidity/EVM pattern scanner, Slither ingestion, Foundry PoC generation, DeFi attack playbooks.

17. Aug. 2026
Es werden 8 von 315 gesammelten Skills angezeigt.
cross-chain
Informationssicherheitsanalysten

Auto-loaded by cross-chain-auditor agent during Phase 2. Provides detection patterns for: missing source chain/address validation, replay attacks, message ordering, chain-specific code, finality assumptions. Core artifact: Cross-Chain Message Flow diagram.

2. Feb. 2026
oracle
Informationssicherheitsanalysten

Auto-loaded by oracle-auditor agent during Phase 2. Provides detection patterns for: stale prices, deprecated Chainlink functions, L2 sequencer downtime, decimal mismatches, spot price manipulation, oracle DoS. Core artifact: Oracle Integration Matrix.

2. Feb. 2026
reentrancy
Informationssicherheitsanalysten

Auto-loaded by reentrancy-auditor agent during Phase 2. Provides detection patterns for: CEI violations, cross-function/cross-contract reentrancy, read-only reentrancy, token callback exploits (ERC721/777/1155). Core artifact: State Timeline map.

2. Feb. 2026
access-control
Informationssicherheitsanalysten

Auto-loaded by access-control-auditor agent during Phase 2. Provides detection patterns for: missing modifiers, privilege escalation, tx.origin phishing, OR/AND logic errors, missing two-step transfer. Core artifact: Permission Matrix.

2. Feb. 2026
token
Informationssicherheitsanalysten

Auto-loaded by token-auditor agent during Phase 2. Provides detection patterns for: fee-on-transfer, rebasing tokens, ERC777 hooks, ERC721/1155 callbacks, missing return values, blacklist/pausable, low decimals. Core artifact: Token Compatibility Matrix.

2. Feb. 2026
upgradeability
Informationssicherheitsanalysten

Auto-loaded by access-control-auditor agent during Phase 2. Provides detection patterns for: UUPS/Transparent/Beacon proxy vulnerabilities, storage collision, initialization issues, function selector clashing, upgrade authorization. Core artifact: Proxy…

2. Feb. 2026
lending
Softwarequalitätssicherungsanalysten und -tester

Auto-loaded by defi-auditor agent during Phase 2 when analyzing lending protocols. Provides patterns for: liquidation logic, interest rate models, collateral management, health factor calculations, bad debt handling. Core vulnerabilities: self-liquidation,…

2. Feb. 2026
vault-erc4626
Softwarequalitätssicherungsanalysten und -tester

Auto-loaded by defi-auditor agent during Phase 2 when analyzing ERC4626 vaults. Provides patterns for: share/asset conversion, inflation attack mitigations, rounding direction rules, donation attacks. Critical: first depositor attack, virtual shares offset,…

2. Feb. 2026
Es werden 8 von 39 gesammelten Skills angezeigt.
2 von 2 Repositories angezeigt
Alle Repositories angezeigt